Title: Cybersecurity Specialist-Scotia Tech
Requisition ID: 244854
Employee Referral Program – Potential Reward: $400,000.00
We are committed to investing in our employees and helping you continue your career at ScotiaTech.
Purpose
Contributes to the overall success of Information Security & Control (IS&C)-Advisory Services ensuring specific individual goals, plans, initiatives are executed / delivered in support of the team’s business strategies and objectives. Ensures all activities conducted are in compliance with governing regulations, internal policies and procedures.
Accountabilities
• Champions a customer focused culture to deepen client relationships and leverage broader Bank relationships, systems and knowledge.
• Establish and maintain a detailed understanding of Scotiabank’s Third-Party Risk Management (TPRM) practices and priorities, with a specific focus on cybersecurity.
• Act as an advocate for IS&C by building strong relationships and promoting awareness of the importance of effective information security practices across the supply chain.
• Conduct comprehensive risk assessments for bank services involving third-party engagements, identifying potential information security threats and vulnerabilities.
• Ensure all risk assessments and security measures comply with the established standards and policies of the group. Propose effective risk mitigation strategies to address identified security risks.
• Work closely with project teams, IT departments, and other stakeholders to integrate security measures into projects and services.
• Understand how the Bank’s risk appetite and risk culture should be considered in day-to-day activities and decisions.
• Continuously monitor risk levels and provide regular reports to senior management on the status of risk assessments and mitigation efforts.
• Support the Incident Management and Investigation processes.
• Actively pursues effective and efficient operations of their respective areas in accordance with Scotiabank's Values, its Code of Conduct, and the Global Sales Principles while ensuring the adequacy, adherence to, and effectiveness of day-to-day business controls to meet obligations concerning operational, compliance, AML/ATF/sanctions and conduct risk.
• Champions a high-performance environment and contributes to an inclusive work environment.
Education / Experience
• At least 3 years of experience in Information Security and Cybersecurity.
• Must have a solid understanding and experience with security controls/mechanisms/Protocols and threat/risk assessment techniques pertaining to complex data, application and network environments.
• Must have strong verbal and written communication skills in English with excellent individual project management and tracking skills. Spanish verbal skill is strongly desired.
• Must have knowledge of regulatory guidelines related to the financial services industry.
• Must have strong knowledge of industry standards/frameworks related to Information Security (ISO27001/27002, NIST, PCI-DSS, GDPR, among others).
• Certifications related to security are considered an asset (e.g., CISSP, CISM, CRISC, CCSP, ISO27001).
• Analytical experience, attention to detail, excellent critical thinking, logic, and ability to solve problems
• Excellent relationship management and negotiation skills to assist in the communication and finalization of the Bank's security requirements, contractual obligations and standards to internal teams and third-party relationships.
Working Conditions
• Work in a standard office-based environment; non-standard hours are a common occurrence.
#LI-HYBRID
Location(s): Colombia : Bogota : Bogota
ScotiaTech is a business unit within ScotiaGBS, a Scotiabank Group company located in Bogota, Colombia. The ScotiaTech hub was created to support different technology systems and processes of the Bank. We offer an inclusive, positive work environment, and competitive benefits.
At ScotiaTech, we value the unique skills and experiences each individual brings and are committed to creating and maintaining an inclusive and accessible environment for everyone. Candidates must apply directly online to be considered for this role. We thank all applicants for their interest in a career at ScotiaTech; however, only those candidates who are selected for an interview will be contacted.
Note: All postings in me@Scotiabank will remain live for a minimum of 5 days.
Job Segment:
Information Security, Compliance, Relationship Manager, Risk Management, Supply Chain, Technology, Legal, Operations, Customer Service, Finance